Contents π
Introduction π
Juro's contract collaboration platform now includes AI Extract: a flexible and powerful tool for analyzing and pulling information from your contracts using generative AI.
This guide outlines some data protection considerations to help you understand how to deploy AI Extract responsibly in your organisation. |
Accountability π¦ΈββοΈ
As a controller, you must demonstrate your compliance with data protection laws.
AI Extract was built with EU and UK privacy laws in mind and operates on Microsoft-managed servers located in the EEA.
You may decide to conduct a data protection impact assessment before using any AI tool. If so, we can provide a template for you to use, pre-filled with information about Juro's AI features. Please ask your Customer Success Manager for a copy of the template.
Transparency πͺ
You must make it clear to individuals how their personal data is processed.
When you start using any of Juro's AI features, make sure that you update your fair processing notices to tell people that you use Juro to process their personal data and that it includes AI capabilities.
We have more information on exactly how and where Juro processes personal data in our award-winning privacy policy. This also includes details about all the sub-processors we use to provide our platform features, including AI Extract.
Lawfulness βοΈ
You must have a lawful basis to process personal data.
This basis shouldn't change just by using AI Extract in Juro. You're using personal data for the same reason, enhanced by a powerful, AI-enabled contract collaboration tool to make your processes more efficient.
Unlike some AI-enabled contract platforms, we don't use your data to train models for anyone else. So you don't have to worry about Juro or its technology partners repurposing your personal data.
Accuracy π―
You must keep the personal data you process accurate and up to date. There is a legal obligation on you to do so.
Generative AI is probabilistic. This means that its outputs are based on a statistical model that predicts the most likely output based on your inputs and the model that powers it. AI can 'hallucinate' and produce inaccurate outputs. As a responsible controller, you must review the information extracted by AI Extract before accepting it, and correct any inaccuracies you identify.
Juro's AI Extract is powered by GPT 4, one of the world's most sophisticated large language models. This significantly enhances the quality of the data extracted by AI Extract.
AI Extract is also highly flexible. You can tailor your extraction playbook so the prompts you use are completely bespoke to the data points and document types that you work with. You can also refine your prompts over time to enhance the accuracy of the data you extract using AI Extract.
Finally, AI Extract lets you review and edit any data it finds before you accept it into your Juro smartfields. This means you can further refine AI Extract's outputs to increase their accuracy before accepting them.
Fairness π°
You must process individuals' personal data fairly.
That means protecting data subjects against unfair outcomes that might result from your processing and ensuring that you're using personal data in ways people expect.
Unlike some AI-enabled contract platforms, we don't use your data to train models for anyone else. So you can reassure people that their personal data isn't being used by Juro or its technology providers to build or train open models.
Remember that AI Extract isn't designed to help you make significant decisions about people or to process personal data about children: these are not permitted under our terms.
Security π
You'll want to know that Juro is taking appropriate steps to keep your data secure.
Contracts govern your most valuable relationships, and Juro has processed over 2 million contracts in its browser-native platform. With AI Extract, we maintain that reputation for uncompromising security.
Juro is SOC-2- and Cyber Essentials-certified. We use powerful encryption for data at rest (256-bit advanced encryption standard) and in transit (TLS) to keep your contracts safe.
AI Extract operates on highly secure Azure servers located in the EEA and managed by Microsoft, with data sent via our zero-retention API.
Individual rights βοΈ
As a controller, you need to trust that you can respond quickly and effectively to individuals requesting to exercise their data rights.
AI Extract is an intelligent and efficient way to extract key information from your contracts. Using AI Extract to help you organize and filter your contracts means you can find and retrieve personal data even quicker than before. You can also download or delete documents in Juro at the touch of a button.
Juro and its technology providers operate short retention periods for data running through AI Extract. Unless a policy violation is identified, we'll delete your AI Extract requests and outputs from our systems within 30 days.
International transfers π«
You need to be sure that any international transfers of personal data are compliant.
Your contracts and AI Extract are EEA-native, operating on highly secure cloud servers operated by AWS and Microsoft.
Where our features require international transfers, we document this in our privacy policy. We don't rely on short-lived safe harbour schemes - instead, we have in place the latest EU Standard Contractual Clauses supplemented by the UK addendum, and supported by rigorous international transfer risk assessments. This ensures strict compliance with the UK and EU rules on international transfers, and the requirements laid down by the Court of Justice of the European Union in the Schrems II judgment.
πββοΈ As always, our Support Team is happy to help you with anything further if needed. Start a chat with us right here by clicking the Intercom button in the bottom-right-hand corner of this page.
Alternatively, you can email your query to support@juro.com π
|